MiniToolBox by Farbar Version: 13-05-2022
Ran by user (administrator) on 15-12-2023 at 18:15:45
Running from "C:\Users\user\Downloads"
Microsoft Windows 10 Home (X64)
Model: GT83VR 6RE Manufacturer: Micro-Star International Co., Ltd.
Boot Mode: Normal
***************************************************************************
========================= Flush DNS: ===================================
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
========================= IE Proxy Settings: ==============================
Proxy is not enabled.
No Proxy Server is set.
"Reset IE Proxy Settings": IE Proxy Settings were reset.
========================= Hosts content: =================================
========================= IP Configuration: ================================
Killer Wireless-n/a/ac 1535 Wireless Network Adapter = Wi-Fi (Connected)
Killer E2400 Gigabit Ethernet Controller = Ethernet (Media disconnected)
Bluetooth Device (Personal Area Network) = Bluetooth Network Connection (Media disconnected)
# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4
reset
set global defaultcurhoplimit=64
set interface interface="Ethernet (Kernel Debugger)" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Ethernet" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Wi-Fi" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Local Area Connection* 1" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Local Area Connection* 2" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Bluetooth Network Connection" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
popd
# End of IPv4 configuration
Windows IP Configuration
Host Name . . . . . . . . . . . . : DESKTOP-T7DDD13
Primary Dns Suffix . . . . . . . :
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No
DNS Suffix Search List. . . . . . : search.charter.com
socal.rr.com
Ethernet adapter Ethernet:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . : socal.rr.com
Description . . . . . . . . . . . : Killer E2400 Gigabit Ethernet Controller
Physical Address. . . . . . . . . : 4C-CC-6A-7F-3E-FD
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
Wireless LAN adapter Local Area Connection* 1:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft Wi-Fi Direct Virtual Adapter
Physical Address. . . . . . . . . : 9E-B6-D0-0D-FA-13
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
Wireless LAN adapter Local Area Connection* 2:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft Wi-Fi Direct Virtual Adapter #2
Physical Address. . . . . . . . . : AE-B6-D0-0D-FA-13
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
Wireless LAN adapter Wi-Fi:
Connection-specific DNS Suffix . : socal.rr.com
Description . . . . . . . . . . . : Killer Wireless-n/a/ac 1535 Wireless Network Adapter
Physical Address. . . . . . . . . : 9C-B6-D0-0D-FA-13
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
IPv6 Address. . . . . . . . . . . : 2603:8001:800:20bc:4231:5c67:5c8e:33d7(Preferred)
Temporary IPv6 Address. . . . . . : 2603:8001:800:20bc:b01c:88ce:13f6:7746(Deprecated)
Temporary IPv6 Address. . . . . . : 2603:8001:800:20bc:b118:f5ed:1e1f:157e(Preferred)
Link-local IPv6 Address . . . . . : fe80::e620:82dc:95cc:8801%17(Preferred)
IPv4 Address. . . . . . . . . . . : 192.168.1.16(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Lease Obtained. . . . . . . . . . : Thursday, December 14, 2023 06:19:21
Lease Expires . . . . . . . . . . : Saturday, December 16, 2023 16:44:24
Default Gateway . . . . . . . . . : fe80::daec:5eff:fe13:1a1c%17
192.168.1.1
DHCP Server . . . . . . . . . . . : 192.168.1.1
DHCPv6 IAID . . . . . . . . . . . : 178042576
DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-2B-B7-E5-8E-4C-CC-6A-7F-3E-FD
DNS Servers . . . . . . . . . . . : 192.168.1.1
NetBIOS over Tcpip. . . . . . . . : Enabled
Connection-specific DNS Suffix Search List :
search.charter.com
socal.rr.com
Ethernet adapter Bluetooth Network Connection:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Bluetooth Device (Personal Area Network)
Physical Address. . . . . . . . . : 9C-B6-D0-0D-FA-14
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
Server: Linksys00709
Address: 192.168.1.1
Name: google.com
Addresses: 2607:f8b0:4007:815::200e
172.217.12.142
Pinging google.com [2607:f8b0:4007:815::200e] with 32 bytes of data:
Reply from 2607:f8b0:4007:815::200e: time=23ms
Reply from 2607:f8b0:4007:815::200e: time=13ms
Ping statistics for 2607:f8b0:4007:815::200e:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 13ms, Maximum = 23ms, Average = 18ms
Server: Linksys00709
Address: 192.168.1.1
DNS request timed out.
timeout was 2 seconds.
Name: yahoo.com
Addresses: 2001:4998:24:120d::1:0
2001:4998:44:3507::8000
2001:4998:124:1507::f001
2001:4998:124:1507::f000
2001:4998:44:3507::8001
2001:4998:24:120d::1:1
74.6.231.20
74.6.143.26
74.6.231.21
98.137.11.163
98.137.11.164
74.6.143.25
Pinging yahoo.com [2001:4998:24:120d::1:1] with 32 bytes of data:
Reply from 2001:4998:24:120d::1:1: time=42ms
Reply from 2001:4998:24:120d::1:1: time=45ms
Ping statistics for 2001:4998:24:120d::1:1:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 42ms, Maximum = 45ms, Average = 43ms
Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time<1ms TTL=64
Reply from 127.0.0.1: bytes=32 time<1ms TTL=64
Ping statistics for 127.0.0.1:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 0ms, Maximum = 0ms, Average = 0ms
===========================================================================
Interface List
4...4c cc 6a 7f 3e fd ......Killer E2400 Gigabit Ethernet Controller
3...9e b6 d0 0d fa 13 ......Microsoft Wi-Fi Direct Virtual Adapter
12...ae b6 d0 0d fa 13 ......Microsoft Wi-Fi Direct Virtual Adapter #2
17...9c b6 d0 0d fa 13 ......Killer Wireless-n/a/ac 1535 Wireless Network Adapter
7...9c b6 d0 0d fa 14 ......Bluetooth Device (Personal Area Network)
1...........................Software Loopback Interface 1
===========================================================================
IPv4 Route Table
===========================================================================
Active Routes:
Network Destination Netmask Gateway Interface Metric
0.0.0.0 0.0.0.0 192.168.1.1 192.168.1.16 35
127.0.0.0 255.0.0.0 On-link 127.0.0.1 331
127.0.0.1 255.255.255.255 On-link 127.0.0.1 331
127.255.255.255 255.255.255.255 On-link 127.0.0.1 331
192.168.1.0 255.255.255.0 On-link 192.168.1.16 291
192.168.1.16 255.255.255.255 On-link 192.168.1.16 291
192.168.1.255 255.255.255.255 On-link 192.168.1.16 291
224.0.0.0 240.0.0.0 On-link 127.0.0.1 331
224.0.0.0 240.0.0.0 On-link 192.168.1.16 291
255.255.255.255 255.255.255.255 On-link 127.0.0.1 331
255.255.255.255 255.255.255.255 On-link 192.168.1.16 291
===========================================================================
Persistent Routes:
None
IPv6 Route Table
===========================================================================
Active Routes:
If Metric Network Destination Gateway
17 291 ::/0 fe80::daec:5eff:fe13:1a1c
1 331 ::1/128 On-link
17 291 2603:8001:800:20bc::/64 On-link
17 51 2603:8001:800:20bc::/64 fe80::daec:5eff:fe13:1a1c
17 291 2603:8001:800:20bc:4231:5c67:5c8e:33d7/128
On-link
17 291 2603:8001:800:20bc:b01c:88ce:13f6:7746/128
On-link
17 291 2603:8001:800:20bc:b118:f5ed:1e1f:157e/128
On-link
17 291 fe80::/64 On-link
17 291 fe80::e620:82dc:95cc:8801/128
On-link
1 331 ff00::/8 On-link
17 291 ff00::/8 On-link
===========================================================================
Persistent Routes:
None
========================= Winsock entries =====================================
Catalog5 01 C:\WINDOWS\SysWOW64\napinsp.dll [54784] (Microsoft Corporation)
Catalog5 02 C:\WINDOWS\SysWOW64\pnrpnsp.dll [70656] (Microsoft Corporation)
Catalog5 03 C:\WINDOWS\SysWOW64\pnrpnsp.dll [70656] (Microsoft Corporation)
Catalog5 04 C:\WINDOWS\SysWOW64\NLAapi.dll [71168] (Microsoft Corporation)
Catalog5 05 C:\WINDOWS\SysWOW64\wshbth.dll [50688] (Microsoft Corporation)
Catalog5 06 C:\WINDOWS\SysWOW64\mswsock.dll [325608] (Microsoft Corporation)
Catalog5 07 C:\WINDOWS\SysWOW64\winrnr.dll [34304] (Microsoft Corporation)
Catalog9 01 C:\WINDOWS\SysWOW64\mswsock.dll [325608] (Microsoft Corporation)
Catalog9 02 C:\WINDOWS\SysWOW64\mswsock.dll [325608] (Microsoft Corporation)
Catalog9 03 C:\WINDOWS\SysWOW64\mswsock.dll [325608] (Microsoft Corporation)
Catalog9 04 C:\WINDOWS\SysWOW64\mswsock.dll [325608] (Microsoft Corporation)
Catalog9 05 C:\WINDOWS\SysWOW64\mswsock.dll [325608] (Microsoft Corporation)
Catalog9 06 C:\WINDOWS\SysWOW64\mswsock.dll [325608] (Microsoft Corporation)
Catalog9 07 C:\WINDOWS\SysWOW64\mswsock.dll [325608] (Microsoft Corporation)
Catalog9 08 C:\WINDOWS\SysWOW64\mswsock.dll [325608] (Microsoft Corporation)
Catalog9 09 C:\WINDOWS\SysWOW64\mswsock.dll [325608] (Microsoft Corporation)
Catalog9 10 C:\WINDOWS\SysWOW64\mswsock.dll [325608] (Microsoft Corporation)
Catalog9 11 C:\WINDOWS\SysWOW64\mswsock.dll [325608] (Microsoft Corporation)
Catalog9 12 C:\WINDOWS\SysWOW64\mswsock.dll [325608] (Microsoft Corporation)
Catalog9 13 C:\WINDOWS\SysWOW64\mswsock.dll [325608] (Microsoft Corporation)
Catalog9 14 C:\WINDOWS\SysWOW64\mswsock.dll [325608] (Microsoft Corporation)
x64-Catalog5 01 C:\Windows\System32\napinsp.dll [70144] (Microsoft Corporation)
x64-Catalog5 02 C:\Windows\System32\pnrpnsp.dll [89088] (Microsoft Corporation)
x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [89088] (Microsoft Corporation)
x64-Catalog5 04 C:\Windows\System32\NLAapi.dll [97280] (Microsoft Corporation)
x64-Catalog5 05 C:\Windows\System32\wshbth.dll [64000] (Microsoft Corporation)
x64-Catalog5 06 C:\Windows\System32\mswsock.dll [419584] (Microsoft Corporation)
x64-Catalog5 07 C:\Windows\System32\winrnr.dll [49152] (Microsoft Corporation)
x64-Catalog9 01 C:\Windows\System32\mswsock.dll [419584] (Microsoft Corporation)
x64-Catalog9 02 C:\Windows\System32\mswsock.dll [419584] (Microsoft Corporation)
x64-Catalog9 03 C:\Windows\System32\mswsock.dll [419584] (Microsoft Corporation)
x64-Catalog9 04 C:\Windows\System32\mswsock.dll [419584] (Microsoft Corporation)
x64-Catalog9 05 C:\Windows\System32\mswsock.dll [419584] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\mswsock.dll [419584] (Microsoft Corporation)
x64-Catalog9 07 C:\Windows\System32\mswsock.dll [419584] (Microsoft Corporation)
x64-Catalog9 08 C:\Windows\System32\mswsock.dll [419584] (Microsoft Corporation)
x64-Catalog9 09 C:\Windows\System32\mswsock.dll [419584] (Microsoft Corporation)
x64-Catalog9 10 C:\Windows\System32\mswsock.dll [419584] (Microsoft Corporation)
x64-Catalog9 11 C:\Windows\System32\mswsock.dll [419584] (Microsoft Corporation)
x64-Catalog9 12 C:\Windows\System32\mswsock.dll [419584] (Microsoft Corporation)
x64-Catalog9 13 C:\Windows\System32\mswsock.dll [419584] (Microsoft Corporation)
x64-Catalog9 14 C:\Windows\System32\mswsock.dll [419584] (Microsoft Corporation)
========================= Event log errors: ===============================
Application errors:
==================
Error: (12/14/2023 06:18:14 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program StartMenuExperienceHost.exe version 0.0.0.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
Process ID: 26f4
Start Time: 01da2e9810aed999
Termination Time: 4294967295
Application Path: C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe
Report Id: 3aca9946-e1eb-49bd-986b-6aacdbc65208
Faulting package full name: Microsoft.Windows.StartMenuExperienceHost_10.0.19041.3636_neutral_neutral_cw5n1h2txyewy
Faulting package-relative application ID: App
Hang type: Quiesce
Error: (12/14/2023 06:16:47 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program SearchApp.exe version 10.0.19041.3758 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
Process ID: 23e8
Start Time: 01da2e9811314c21
Termination Time: 4294967295
Application Path: C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe
Report Id: e0420d2d-ffb8-42a1-aff4-333ab41601a0
Faulting package full name: Microsoft.Windows.Search_1.14.10.19041_neutral_neutral_cw5n1h2txyewy
Faulting package-relative application ID: CortanaUI
Hang type: Quiesce
Error: (12/13/2023 11:38:07 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program SearchApp.exe version 10.0.19041.3758 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
Process ID: d04
Start Time: 01da2e6070c1be25
Termination Time: 4294967295
Application Path: C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe
Report Id: 76626a4d-721e-4e9d-99c5-b7e6562a9252
Faulting package full name: Microsoft.Windows.Search_1.14.10.19041_neutral_neutral_cw5n1h2txyewy
Faulting package-relative application ID: CortanaUI
Hang type: Quiesce
Error: (12/13/2023 11:14:25 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program SearchApp.exe version 10.0.19041.3758 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
Process ID: 28f4
Start Time: 01da2e5cec1f9ef4
Termination Time: 4294967295
Application Path: C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe
Report Id: c3291ba2-5edf-4675-b29e-0cb7ec5f52bc
Faulting package full name: Microsoft.Windows.Search_1.14.10.19041_neutral_neutral_cw5n1h2txyewy
Faulting package-relative application ID: CortanaUI
Hang type: Quiesce
Error: (12/13/2023 11:14:04 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program TextInputHost.exe version 123.26505.0.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
Process ID: 30dc
Start Time: 01da2e5cf18c26af
Termination Time: 4294967295
Application Path: C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\TextInputHost.exe
Report Id:
Faulting package full name: MicrosoftWindows.Client.CBS_1000.19053.1000.0_x64__cw5n1h2txyewy
Faulting package-relative application ID: InputApp
Hang type: Activation
Error: (12/13/2023 11:11:29 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance. hr = 0x8007045b, A system shutdown is in progress.
.
Error: (12/13/2023 11:11:29 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x8007045b, A system shutdown is in progress.
]
Error: (12/13/2023 11:11:29 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance. hr = 0x8007045b, A system shutdown is in progress.
.
Error: (12/13/2023 11:11:29 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x8007045b, A system shutdown is in progress.
]
Error: (12/04/2023 08:13:26 PM) (Source: ESENT) (EventID: 454) (User: )
Description: wuaueng.dll (4692,R,98) SUS20ClientDataStore: Database recovery/restore failed with unexpected error -543.
System errors:
=============
Error: (12/15/2023 06:12:57 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-T7DDD13)
Description: Event-ID 10010
Error: (12/15/2023 05:34:19 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Installation Failure: Windows failed to install the following update with error 0x80073d02: 9NMPJ99VJBWV-Microsoft.YourPhone.
Error: (12/14/2023 06:34:41 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-T7DDD13)
Description: Event-ID 10010
Error: (12/14/2023 06:14:54 AM) (Source: nvlddmkm) (EventID: 14) (User: )
Description: Event-ID 14
Error: (12/14/2023 06:14:44 AM) (Source: volmgr) (EventID: 161) (User: )
Description: Dump file creation failed due to error during dump creation.
Error: (12/14/2023 06:14:44 AM) (Source: volmgr) (EventID: 161) (User: )
Description: Dump file creation failed due to error during dump creation.
Error: (12/14/2023 06:15:35 AM) (Source: EventLog) (EventID: 6008) (User: )
Description: The previous system shutdown at 5:37:22 AM on 12/14/2023 was unexpected.
Error: (12/14/2023 05:54:02 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-T7DDD13)
Description: Event-ID 10010
Error: (12/14/2023 05:47:56 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-T7DDD13)
Description: Event-ID 10010
Error: (12/13/2023 11:37:47 PM) (Source: nvlddmkm) (EventID: 14) (User: )
Description: Event-ID 14
Windows Defender:
================
Date: 2023-12-14 06:16:04
Description:
Microsoft Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
[URL unfurl="true"]https://go.microsoft.com/fwlink/?linkid=37020&name=PUABundler:Win32/IOBitBundler&threatid=362730&enterprise=0[/URL]
Name: PUABundler:Win32/IOBitBundler
Severity: Low
Category: Potentially Unwanted Software
Path: file:_C:\Users\user\OneDrive\Documents\driver_booster_setup.exe
Detection Origin: Local machine
Detection Type: Concrete
Detection Source: System
Process Name: Unknown
Security intelligence Version: AV: 1.403.462.0, AS: 1.403.462.0, NIS: 1.403.462.0
Engine Version: AM: 1.1.23110.2, NIS: 1.1.23110.2
Date: 2023-12-13 23:37:56
Description:
Microsoft Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
[URL unfurl="true"]https://go.microsoft.com/fwlink/?linkid=37020&name=PUABundler:Win32/IOBitBundler&threatid=362730&enterprise=0[/URL]
Name: PUABundler:Win32/IOBitBundler
Severity: Low
Category: Potentially Unwanted Software
Path: file:_C:\Users\user\OneDrive\Documents\driver_booster_setup.exe
Detection Origin: Local machine
Detection Type: Concrete
Detection Source: System
Process Name: Unknown
Security intelligence Version: AV: 1.403.462.0, AS: 1.403.462.0, NIS: 1.403.462.0
Engine Version: AM: 1.1.23110.2, NIS: 1.1.23110.2
Date: 2023-12-13 23:12:36
Description:
Microsoft Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
[URL unfurl="true"]https://go.microsoft.com/fwlink/?linkid=37020&name=PUABundler:Win32/IOBitBundler&threatid=362730&enterprise=0[/URL]
Name: PUABundler:Win32/IOBitBundler
Severity: Low
Category: Potentially Unwanted Software
Path: file:_C:\Users\user\OneDrive\Documents\driver_booster_setup.exe
Detection Origin: Local machine
Detection Type: Concrete
Detection Source: System
Process Name: Unknown
Security intelligence Version: AV: 1.403.460.0, AS: 1.403.460.0, NIS: 1.403.460.0
Engine Version: AM: 1.1.23110.2, NIS: 1.1.23110.2
Date: 2023-12-13 21:57:23
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Date: 2023-12-11 22:02:12
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Event[0]:
Date: 2023-08-24 08:32:04
Description:
Microsoft Defender Antivirus has encountered an error trying to update security intelligence and will attempt to revert to a previous version.
Security intelligence Attempted: Current
Error Code: 0x80070003
Error description: The system cannot find the path specified.
Security intelligence Version: 0.0.0.0;0.0.0.0
Engine Version: 0.0.0.0
Date: 2023-08-24 08:11:29
Description:
Microsoft Defender Antivirus Real-Time Protection feature has encountered an error and failed.
Feature: On Access
Error Code: 0x8007043c
Error description: This service cannot be started in Safe Mode
Reason: Antimalware security intelligence has stopped functioning for an unknown reason. In some instances, restarting the service may resolve the problem.
CodeIntegrity Errors:
====================
Date: 2023-12-05 17:05:58
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\ProgramData\Microsoft\Windows Defender\Platform\4.18.23100.2009-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2023-11-23 08:13:00
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Users\user\AppData\Local\eve-online\app-0.4.9\eve-online.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Steam\SteamOverlayVulkanLayer64.dll that did not meet the Microsoft signing level requirements.
Date: 2023-10-27 18:59:53
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
=========================== Installed Programs ============================
7.1 Surround Sound (HKLM-x32\...\Razer Surround Sound) (Version: 1.0.1.16 - Razer Inc.)
Advanced SystemCare (HKLM-x32\...\Advanced SystemCare_is1) (Version: 17.1.0 - IObit)
Battery Calibration (HKLM-x32\...\InstallShield_{634AC01E-49DB-4AD2-B87C-90D4DCC6AFA1}) (Version: 1.0.1609.1901 - Micro-Star International Co., Ltd.)
Dragon Center (HKLM-x32\...\InstallShield_{C65B26BC-5A6F-4135-9678-55A877655471}) (Version: 1.2.1910.3101 - Micro-Star International Co., Ltd.)
Driver Booster 11 (HKLM-x32\...\Driver Booster_is1) (Version: 11.1.0 - IObit)
ENE_DRAM_RGB_AIO (HKLM\...\{1745D314-9077-46C9-8562-1C62BAE189B7}) (Version: 1.0.3.31 - Ene Tech.) Hidden
ENE_DRAM_RGB_AIO (HKLM-x32\...\{cb8809b0-c2ad-40f3-80c7-8ebf6c6f8f63}) (Version: 1.0.3.31 - Ene Tech.) Hidden
ENE_EHD_M2_HAL (HKLM\...\{37A48B7F-D4EA-4863-844E-A284E2AA3C5D}) (Version: 1.0.9.10 - ENE TECHNOLOGY INC.) Hidden
ENE_EHD_M2_HAL (HKLM-x32\...\{7c1089bb-6d30-4461-a52c-65839a41d745}) (Version: 1.0.9.10 - ENE TECHNOLOGY INC.) Hidden
ENE_MousePad_HAL (HKLM\...\{9E97178A-ADB8-4778-BE60-7E28E2A72721}) (Version: 1.0.2.0 - ENE TECHNOLOGY INC.) Hidden
ENE_MousePad_HAL (HKLM-x32\...\{c2c794a4-7986-4c45-884d-d4ca43b88df9}) (Version: 1.0.2.0 - ENE TECHNOLOGY INC.) Hidden
ENE_X-JMI_HAL (HKLM\...\{2B8E611F-0B51-4FAC-87BB-AF50D82E7DDA}) (Version: 1.0.5.1 - ENE Tech) Hidden
ENE_X-JMI_HAL (HKLM-x32\...\{50ec3a07-291b-463e-be86-487eb8cbb71c}) (Version: 1.0.5.1 - ENE Tech) Hidden
EVE Online (HKLM\...\Steam App 8500) (Version: - CCP)
Fantasy Grounds (HKLM\...\Fantasy Grounds) (Version: - SmiteWorks)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 120.0.6099.109 - Google LLC)
Google Drive (HKLM\...\{6BBAE539-2232-434A-A4E5-9A33560C6283}) (Version: 85.0.25.0 - Google LLC)
Help Desk (HKLM-x32\...\InstallShield_{7E8181AF-9679-49B3-B133-C265709B6927}) (Version: 1.0.1802.0501 - Micro-Star International Co., Ltd.)
Intel Extreme Tuning Utility (HKLM-x32\...\{9c09fe2c-7a45-4602-ac8d-9e217e1c3064}) (Version: 6.4.0.5 - Intel Corporation)
Intel XTU Library (HKLM-x32\...\{95D06672-D57B-406C-8D2F-A003AD3C2E3D}) (Version: 10.017.09141 - Micro-Star International Co., Ltd.)
IObit Software Updater (HKLM-x32\...\IObit Software Updater_is1) (Version: 6.3.0.15 - IObit)
Microsoft 365 - en-us (HKLM\...\O365HomePremRetail - en-us) (Version: 16.0.17029.20068 - Microsoft Corporation)
Microsoft OneDrive (HKLM\...\OneDriveSetup.exe) (Version: 23.226.1031.0003 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
MSI Remind Manager Service (HKLM-x32\...\InstallShield_{3E23F267-3E35-40F9-B6BF-BC034D214717}) (Version: 1.0.1802.0501 - Micro-Star International Co., Ltd.)
MSI SDK (HKLM-x32\...\{EE7D557C-3AE7-4348-8DCA-3A89790D0002}}_is1) (Version: 2.2022.1212.01 - MSI)
Mumble (client) (HKLM\...\{7668CA93-7D82-43E5-AA6D-BCA352951877}) (Version: 1.4.287 - Mumble VoIP)
New World (HKLM\...\Steam App 1063730) (Version: - Amazon Games)
NVIDIA FrameView SDK 1.3.8513.32290073 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.3.8513.32290073 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.27.0.112 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.27.0.112 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.21.0713 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.21.0713 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.17029.20000 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.16327.20248 - Microsoft Corporation) Hidden
OnScreen Control (HKLM-x32\...\{E5C1B339-0E4E-49A5-859E-5E1DE1938706}) (Version: 7.95.0 - LG Electronics Inc)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Razer Synapse (HKLM-x32\...\Razer Synapse) (Version: 3.8.0630.062814 - Razer Inc.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8328 - Realtek Semiconductor Corp.)
Red Dead Redemption 2 (HKLM\...\Steam App 1174180) (Version: - Rockstar Games)
Rockstar Games Launcher (HKLM-x32\...\Rockstar Games Launcher) (Version: 1.0.77.1590 - Rockstar Games)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.1.9.8 - Rockstar Games)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Thunderbolt(TM) Software (HKLM-x32\...\{B0E8A8CA-5A40-49C3-BE5E-9076664DB9AA}) (Version: 15.3.39.250 - Intel Corporation)
Transport Fever 2 (HKLM\...\Steam App 1066780) (Version: - Urban Games)
Update for Windows 10 for x64-based Systems (KB5001716) (HKLM\...\{7B63012A-4AC6-40C6-B6AF-B24A84359DD5}) (Version: 8.93.0.0 - Microsoft Corporation)
WD_BLACK AN1500 (HKLM\...\{085E2365-0A70-4230-B664-02D5E4FE7E9C}) (Version: 1.0.12.0 - ENE TECHNOLOGY INC.) Hidden
WD_BLACK AN1500 (HKLM-x32\...\{9c94735f-73fd-4b0f-9ddb-8be7b3cc4681}) (Version: 1.0.12.0 - ENE TECHNOLOGY INC.) Hidden
WD_BLACK D50 (HKLM\...\{BDE43F26-5917-44F8-B86A-F1D9A6B80B32}) (Version: 1.0.9.0 - ENE TECHNOLOGY INC.) Hidden
WD_BLACK D50 (HKLM-x32\...\{a1d1ba00-92b7-4a99-8ebd-65b25c0e9e44}) (Version: 1.0.9.0 - ENE TECHNOLOGY INC.) Hidden
Wrayth -- Game Client from Simutronics (HKLM-x32\...\WraythFE) (Version: - Simutronics Corporation)
Packages:
=========
Cortana -> C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2308.1005.0_x64__8wekyb3d8bbwe [2023-08-24] (Microsoft Corporation)
DragonCenter -> C:\Program Files\WindowsApps\9426MICRO-STARINTERNATION.DragonCenter_2.0.130.0_x64__kzh8wxbdkxb8p [2023-08-24] (MICRO-STAR INTERNATIONAL CO., LTD) [Startup Task]
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_150.1.1140.0_x64__v10z8vjag6ke6 [2023-11-11] (HP Inc.)
Microsoft Defender -> C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2311.21001.0_x64__8wekyb3d8bbwe [2023-12-06] (Microsoft Corporation) [Startup Task]
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.964.0_x64__56jybvy8sckqj [2023-08-24] (NVIDIA Corp.)
Outlook for Windows -> C:\Program Files\WindowsApps\Microsoft.OutlookForWindows_1.2023.1108.200_x64__8wekyb3d8bbwe [2023-11-16] (Microsoft Corporation)
Photos Media Engine Add-on -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2023-08-24] (Microsoft Corporation)
Solitaire & Casual Games -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.18.11020.0_x64__8wekyb3d8bbwe [2023-11-25] (Microsoft Studios) [MS Ad]
SynMsiDApp -> C:\Program Files\WindowsApps\SynapticsIncorporated.SynMsiDApp_19005.31005.0.0_x64__807d65c4rvak2 [2023-08-24] (Synaptics Incorporated)
Windows Package Manager Source (winget) -> C:\Program Files\WindowsApps\Microsoft.Winget.Source_2023.927.1600.993_neutral__8wekyb3d8bbwe [2023-09-27] (Microsoft Corporation)
WindowsAppRuntime.1.3 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.3_3000.882.2207.0_x64__8wekyb3d8bbwe [2023-08-24] (Microsoft Corporation)
WindowsAppRuntime.1.3 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.3_3000.934.1904.0_x64__8wekyb3d8bbwe [2023-08-24] (Microsoft Corporation)
WindowsAppRuntime.1.3 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.3_3000.934.1904.0_x86__8wekyb3d8bbwe [2023-08-24] (Microsoft Corporation)
WindowsAppRuntime.1.4 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.4_4000.1010.1349.0_x64__8wekyb3d8bbwe [2023-11-04] (Microsoft Corporation)
WindowsAppRuntime.1.4 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.4_4000.1049.117.0_x64__8wekyb3d8bbwe [2023-11-25] (Microsoft Corporation)
WindowsAppRuntime.1.4 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.4_4000.1049.117.0_x86__8wekyb3d8bbwe [2023-11-25] (Microsoft Corporation)
桌面翻页时钟 -> C:\Program Files\WindowsApps\WuhanNetPowerTechnologyCo.58808405FEBD5_4.8.4.0_neutral__63m8b6nby1dvp [2023-12-13] (Wuhan Net Power Technology Co., Ltd) [Startup Task]
========================= Devices: ================================
========================= Memory info: ===================================
Percentage of memory in use: 11%
Total physical RAM: 49109.46 MB
Available physical RAM: 43618.15 MB
Total Virtual: 56277.46 MB
Available Virtual: 45144.76 MB
========================= Partitions: =====================================
1 Drive c: () (Fixed) (Total:237.84 GB) (Free:46.31 GB) NTFS
2 Drive d: (Data) (Fixed) (Total:931.51 GB) (Free:438.91 GB) NTFS
========================= Users: ========================================
User accounts for \\DESKTOP-T7DDD13
Administrator brait DefaultAccount
Guest jenny pinkh
susan user WDAGUtilityAccount
========================= Minidump Files ==================================
C:\WINDOWS\Minidump\121323-10187-01.dmp
C:\WINDOWS\Minidump\121423-10546-01.dmp
========================= Restore Points ==================================
13-12-2023 14:52:12 Windows Modules Installer
14-12-2023 07:31:27 Driver Booster : Auto Update